Memory corruption in Shockwave Player - CVE-2017-11294
Published: November 14, 2017
Shockwave Player
Detailed vulnerability description
The weakness exists due to a boundary error when handling malicious input. A remote attacker can trick the victim into opening a specially crafted media file, trigger memory corruption and execute arbitrary code with privileges of the current user.
Successful exploitation of the vulnerability may result in system compromise.